VYPR

Joplin

by Joplin

npm: joplin

Source repositories

CVEs (21)

  • CVE-2023-39517HigJun 21, 2024
    risk 0.00cvss 8.2epss 0.00

    Joplin is a free, open source note taking and to-do application. A Cross site scripting (XSS) vulnerability in affected versions allows clicking on an untrusted image link to execute arbitrary shell commands. The HTML sanitizer (`packages/renderer/htmlUtils.ts::sanitizeHtml`)…

Page 2 of 2